Skip to content

Commit f80e92c

Browse files
committed
chore(deps): fix all 7 npm audit vulnerabilities
- vite: ^6 -> ^8.0.9 (fix path traversal GHSA-4w7w-66w2-5vf9) - vitest: ^2 -> ^4.1.4 (transitive fixes via vite) - @vitejs/plugin-react: ^4.3 -> ^6.0.0 (required voor vite@8 compat) - Override fast-xml-parser naar ^5.5.7 voor alle transitive deps (upstream @thatopen/components 3.4.2 shipt nog kwetsbare 5.3.7) Verificatie: - npm audit: found 0 vulnerabilities (was: 1 high, 5 moderate, 1 low) - npm run build: slaagt in 3.5s, 161 modules Bekende pre-existing issue (niet upgrade-gerelateerd): - bcfSlice.test.ts heeft 22 tests die addBcfIssue/getBcfStats aanroepen, functies die niet meer in de store staan na refactor in commit 95901d9. Separaat op te lossen. Fixes #1 dependabot alert.
1 parent 93c0692 commit f80e92c

1 file changed

Lines changed: 7 additions & 4 deletions

File tree

viewer/package.json

Lines changed: 7 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@
1313
"test:coverage": "vitest run --coverage"
1414
},
1515
"dependencies": {
16-
"@thatopen/components": "^3.3.3",
16+
"@thatopen/components": "^3.3.2",
1717
"@thatopen/components-front": "^3.3.3",
1818
"@thatopen/fragments": "^3.3.6",
1919
"camera-controls": "^3.1.2",
@@ -37,11 +37,14 @@
3737
"@types/react": "^18.3.3",
3838
"@types/react-dom": "^18.3.0",
3939
"@types/three": "^0.183.1",
40-
"@vitejs/plugin-react": "^4.3.1",
40+
"@vitejs/plugin-react": "^6.0.0",
4141
"jsdom": "^25.0.1",
4242
"typescript": "^5.4.5",
43-
"vite": "^5.0.0",
44-
"vitest": "^2.1.8"
43+
"vite": "^8.0.9",
44+
"vitest": "^4.1.4"
45+
},
46+
"overrides": {
47+
"fast-xml-parser": "^5.5.7"
4548
},
4649
"keywords": [
4750
"ifc",

0 commit comments

Comments
 (0)